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applied to a large-scale transit network yields a high volume of packets. To overcome this 
problem, we discuss the behavior of packets and present a symptom-based packet 
aggregation technique which is useful for fault detection. Copyright © 2000 John Wiley & 
Sons, Ltd. 
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Widely-used operating systems provide inadequate support for large-scale Internet server 
applications. Their algorithms and interfaces fail to efficiently support either event-driven or 
multi-threaded servers. They provide poor control over the scheduling and management of 
machine resources, making it difficult to provide robust and controlled service. We propose 
new UNIX interfaces to improve scalability, and to provide fine-grained scheduling and 
resource management. 
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In this paper, we address the problem of service availability in mobile ad-hoc WANs. We 
present a secure mechanism to stimulate end users to keep their devices turned on, to 
refrain from overloading the network, and to thwart tampering aimed at converting the 
device into a "selfish" one. Our solution is based on the application of a tamper resistant 
security module in each device and cryptographic protection of messages. 
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This paper describes a technique for- tracing anonymous packet flooding attacks in the 
Internet back towards their source. This work is motivated by the increased frequency and 
sophistication of denial-of-service attacks and by the difficulty in tracing packets with 
incorrect, or * "spoofed", source addresses. In this paper we describe a general purpose 
traceback mechanism based on probabilistic packet marking in the network. Our approach 
allows a victim to identify the network path(s) trave ... 
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August 2000 Proceedings of the 6th annual international conference on Mobile 
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We present the design and implementation of an end-to-end architecture for Internet host 
mobility using dynamic updates to the Domain Name System (DNS) to track host location. 
Existing TCP connections are retained using secure and efficient connection migration, 
enabling established connections to seamlessly negotiate a change in endpoint IP addresses 
without the need for a third party. Our architecture is secure— name updates are effected 
via the secure DNS update protocol, while TCP ... 
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We present Keyed HIP (KHIP), a secure, hierarchical multicast routing protocol. We show 
that other shared-tree multicast routing protocols are subject to attacks against the 
multicast routing infrastructure that can isolate receivers or domains or introduce loops into 
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the structure of the multicast routing tree. KHIP changes the multicast routing model so 
that only trusted members are able to join the multicast tree. This protects the multicast 
routing against attacks that could form branches to ... 
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August 2000 ACM SIGCOMM Computer Communication Review , Proceedings of the 

conference on Applications, Technologies, Architectures, and Protocols for 
Computer Communication, volume 30 issue 4 

Full text available: ^pdfd 07.75 KB) Additional Information: full citation , abstract, references , index terms 

Current routing protocols are monolithic, specifying the algorithm used to construct 
forwarding tables, the metric used by the algorithm (generally some form of hop-count), 
and the protocol used to distribute these metrics as an integrated package. The Flexible 
Intra-AS Routing Environment (FIRE) is a link-state, intra-domain routing protocol that 
decouples these components. FIRE supports run-time-pro- grammable algorithms and 
metrics over a secure link-state distribution protocol. By allow ... 

36 Defending against denial of service attacks in Scout 
Oliver Spatscheck, Larry L. Peterson 

February 1999 Proceedings of the third symposium on Operating systems design and 
implementation 

Additional Information: full citation , references , citings , index terms 
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37 Papers: YESSIR: a simple reservation mechanism for the Internet 
Ping Pan, Henning Schulzrinne 

April 1999 ACM SIGCOMM Computer Communication Review, Volume 29 issue 2 
Full text available: Qpdfd.23 MB) Additional Information: full citation , abstract , references , citings 

RSVP has been designed to support resource reservation in the Internet. However, it has 
two major problems: complexity and scalability. The former results in large message 
processing overhead at end systems and routers, and inefficient firewall processing at the 
edge of the network. The latter implies that in a backbone environment, the amount of 
bandwidth consumed by refresh messages and the storage space that is needed to support 
a large number of flows at a router are too large. We have devel ... 

38 Intrusion detection in wireless ad-hoc networks 
Yongguang Zhang, Wenke Lee 

August 2000 Proceedings of the 6th annual international conference on Mobile 
computing and networking 

Full text available: f| pdf(936.44 KB) Additional Information: fullc^ation , abstract, references , citings, index 

As the recent denial-of-service attacks on several major Internet sites have shown us, no 
open computer network is immune from intrusions. The wireless ad-hoc network is 
particularly vulnerable due to its features of open medium, dynamic changing topology, 
cooperative algorithms, lack of centralized monitoring and management point, and lack of a 
clear line of defense. Many of the intrusion detection techniques developed on a fixed wired 
network are not applicable in this new environment. Ho ... 

39 A security model for dynamic adaptive traffic masking 
Brenda Timmerman 

January 1998 Proceedings of the 1997 workshop on New security paradigms 
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December 1999 ACM SIGOP5 Operating Systems Review , Proceedings of the 

seventeenth ACM symposium on Operating systems principles, volume 33 
Issue 5 

Full text available* 1SI odfd 87 MB) Additional Information: full citation , abstract, references , citings , index 
'™ terms 

Although active networks have generated much debate in the research community, on the 
whole there has been little hard evidence to inform this debate. This paper aims to redress 
the situation by reporting what we have learned by designing, implementing and using the 
ANTS active network toolkit over the past two years. At this early stage, active networks 
remain an open research area. However, we believe that we have made substantial 
progress towards providing a more flexible network layer while ... 
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